Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.8
CVE-2025-32888
An issue was discovered on goTenna Mesh devices with app 5.5.3 and firmware 1.1.12. The verification token used for sending SMS through a goTenna ser…
Mesh Firmware
Mitigation only
HIGH 8.8
CVE-2025-32889
An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The verification token used for sending SMS through a goTenna serve…
Mesh Firmware
Mitigation only
MEDIUM 6.5
CVE-2025-32890
An issue was discovered on goTenna Mesh devices with app 5.5.3 and firmware 1.1.12. It uses a custom implementation of encryption without any additio…
Mesh Firmware
No fix yet
MEDIUM 6.5
CVE-2025-32882
An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app uses a custom implementation of encryption without any addi…
Mesh Firmware
Mitigation only
MEDIUM 6.5
CVE-2025-32884
An issue was discovered on goTenna Mesh devices with app 5.5.3 and firmware 1.1.12. By default, a GID is the user's phone number unless they specific…
Mesh Firmware
Mitigation only
MEDIUM 6.5
CVE-2025-32885
An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app there makes it possible to inject any custom message (into …
Mesh Firmware
Mitigation only
MEDIUM 6.5
CVE-2025-32887
An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. A command channel includes the next hop. which can be intercepted a…
Mesh Firmware
Mitigation only
MEDIUM 5.5
CVE-2025-32886
An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. All packets sent over RF are also sent over UART with USB Shell, al…
Mesh Firmware
Mitigation only
MEDIUM 6.5
CVE-2025-32881
An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. By default, the GID is the user's phone number unless they specific…
Mesh Firmware
Mitigation only
MEDIUM 6.5
CVE-2024-47130
The goTenna Pro App allows unauthenticated attackers to remotely update
the local public keys used for P2P and group messages. It is advised to
upd…
Gotenna Pro
2.0.3+
HIGH 8.8
CVE-2024-47126
The goTenna Pro App does not use SecureRandom when generating passwords
for sharing cryptographic keys. The random function in use makes it
easier …
Gotenna Pro
2.0.3+
MEDIUM 6.5
CVE-2024-47122
In the goTenna Pro App, the encryption keys are stored along with a
static IV on the End User Device (EUD). This allows for complete
decryption of …
Gotenna Pro
2.0.3+
MEDIUM 6.5
CVE-2024-47124
The goTenna Pro App does not encrypt callsigns in messages. It is
recommended to not use sensitive information in callsigns when using
this and pre…
Gotenna Pro
2.0.3+
MEDIUM 5.4
CVE-2024-47125
The goTenna Pro App does not authenticate public keys which allows an
unauthenticated attacker to manipulate messages. It is advised to update
your…
Gotenna Pro
2.0.3+
MEDIUM 5.3
CVE-2024-47121
The goTenna Pro App uses a weak password for sharing encryption keys via
the key broadcast method. If the broadcasted encryption key is captured
ov…
Gotenna Pro
2.0.3+
MEDIUM 6.5
CVE-2024-45374
The goTenna Pro ATAK plugin uses a weak password for sharing encryption
keys via the key broadcast method. If the broadcasted encryption key is
cap…
Gotenna
2.0.7+
MEDIUM 6.5
CVE-2024-45723
The goTenna Pro ATAK Plugin does not use SecureRandom when generating
passwords for sharing cryptographic keys. The random function in use
makes it…
Gotenna
2.0.7+
MEDIUM 6.5
CVE-2024-41722
In the goTenna Pro ATAK Plugin there is a vulnerability that makes it
possible to inject any custom message with any GID and Callsign using a
softw…
Gotenna
2.0.7+
MEDIUM 6.5
CVE-2024-43108
The goTenna Pro ATAK Plugin uses AES CTR type encryption for short,
encrypted messages without any additional integrity checking mechanisms.
This l…
Gotenna
2.0.7+
MEDIUM 6.5
CVE-2024-43694
In the goTenna Pro ATAK Plugin application, the encryption keys are
stored along with a static IV on the device. This allows for complete
decryptio…
Atak Plugin
2.0.7+